VendorsClaudio Matsuokaextended_module_playerall versions
Vulnerabilities

Claudio Matsuoka Extended Module Player

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2007-6731
Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via an OXM file with a negative value, which bypasses a check in (1) test_oxm and (2) decrunch_oxm functions in misc/oxm.c, leading to a buffer overflow.
Published 2009-09-13 · Modified
10.01 PoCEPSS 0.141
CVE-2007-6732
Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via unspecified vectors related to an untrusted length value and the (1) pofs and (2) plen arrays.
Published 2009-09-13 · Modified
10.0EPSS 0.056